Database/Firmware, BMC & network fabric
Intel Boot Guard and Intel TXT (hardware debug / INIT): Hardware debug modes and processor INIT handling can override
Impact
Hardware debug modes and processor INIT handling can override the locks that Boot Guard and TXT rely on, letting an unauthenticated attacker escalate privilege and defeat measured/verified boot. This reaches both of Intel's boot-integrity technologies at once - the two things a remote attestation claim about a bare-metal node ultimately rests on.
Who can reach it
An attacker with the ability to trigger the relevant debug or INIT conditions - realistically physical or deep platform access.
What to do
Platform BIOS/firmware update from the OEM. Drain and reboot per node, and wait on OEM packaging. Until then, treat Boot Guard and TXT measurements from affected platforms as advisory rather than authoritative in any attestation policy you enforce.
References
Related entries
- AMD Secure Processor secure boot - voltage fault injection (AMD-SB-4005): Voltage fault injection against the ASPCVE-2023-20589 · AMD Secure Processor secure boot - voltage fault injection (AMD-SB-4005)Medium
- Trend Micro Endpoint Encryption Full Disk Encryption (UEFI pre-boot): A signed pre-boot component that allows SecureCVE-2023-28005 · Trend Micro Endpoint Encryption Full Disk Encryption (UEFI pre-boot)Medium
- AMI AptioV UEFI BIOS (SPI flash access control): Improper access control in the BIOS that lets a local attacker makeCVE-2024-2315 · AMI AptioV UEFI BIOS (SPI flash access control)Medium
- Lenovo XClarity Administrator (LXCA) - single sign-on to XCC: Where LXCA acts as the single sign-on provider for XCCCVE-2024-45101 · Lenovo XClarity Administrator (LXCA) - single sign-on to XCCMedium
- Kioxia CM6 (GPK5 and earlier), PM6 (BD0D and earlier), PM7 (C40A and earlier) enterprise NVMe/SAS SSDsCVE-2024-7726 · Kioxia CM6 (GPK5 and earlier), PM6 (BD0D and earlier), PM7 (C40A and earlier) enterprise NVMe/SAS SSDs…Medium
- NVIDIA ConnectX and BlueField: a VF holder can wedge the adapter through a control register commandCVE-2025-33207 · NVIDIA ConnectX / BlueField firmware (control register interface reachable from a VF)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.